Known vulnerabilities in ManageEngine Analytics Plus 5000
Vendor:
Zoho Corporation
Software:
ManageEngine Analytics Plus
Version:
5000
Software CPE:
cpe:2.3:a:zohocorp:manageengine_analytics_plus:*:*:*:*:*:*:*:*
Website:
https://www.zohocorp.com/index.html
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
6420
6410
6400
6310
6300
6230
6220
6210
6200
6171
6170
6160
6150
6140
6130
6120
6110
6000
5500
5420
5410
5400
5360
5350
5340
5330
5320
5310
5301
5300
5260
5250
5240
5230
5220
5210
5200
5140
5130
5121
5120
5110
5100
5090
5080
5070
5060
5050
5030
5020
5010
5000
4760
4750
4700
4650
4610
4600
4595
4590
4580
4570
4560
4550
4510
4500
4460
4450
4440
4430
4420
4410
4400
4350
4310
4300
4280
4270
4260
4250
4200
4150
4100
4000
3950
3900
3800
3700
3600
3500
3450
3400
3310
3300
3250
3200
3110
3100
6100
5150
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114766 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2025-9428 |
CWE-89 | Medium | 6200 | 03.09.2025 |
SB2025090345 |
||
| #VU114765 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') CVE-2025-8324 |
CWE-89 | High | 6171 | 03.09.2025 |
SB2025090344 |